> Markdown version of [/jobs/ext/548137-soc-analyst-tier-2](https://www.wearedevelopers.com/jobs/ext/548137-soc-analyst-tier-2). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # SOC Analyst Tier 2 - **Company:** Vaultes, LLC - **Location:** United States (Remote available) - **Experience:** Experienced - **Salary:** $80,000.0 - $112,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Active Directory, Microsoft Antivirus, Cyber Security, Information Systems, Linux, Issue Tracking Systems, Intrusion Detection Systems, Network Security, Networking Basics, Office Suite, Cloud Services, Security Information and Event Management, Windows Desktop, Cloud Platform System, In-Plane Switching (IPS), Information Technology, Splunk, Qualys - **Published:** June 11, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=4ccad8a2226ead8f ## About the Role Do you have experience in Windows?, Do you have a Bachelor's degree?, * Ability to obtain and maintain a Public Trust * US Citizenship is required * Bachelor's degree in cybersecurity, information systems, computer science, or related field; equivalent experience may be substituted. * 3-5 years of experience in a SOC, cybersecurity operations, or related IT security role. * Experience working with SIEM platforms, ticketing systems, and endpoint/network security tools. * Understanding of common attack techniques, indicators of compromise, and incident triage workflows. * Familiarity with Windows, Linux, Active Directory, cloud environments, and networking fundamentals. * Familiarity with NIST, FISMA, RMF, or similar frameworks. * Experience supporting federal, regulated, or compliance-driven environments. * Strong analytical, written, and verbal communication skills. * Comfortable working across shifts and during time-sensitive events., * Active Public Trust. * Experience working on a Federal contract. * Experience with tools such as Splunk, Microsoft Defender, and Qualys. * Relevant certifications such as Security+, CySA+, GCIH, or SC-200., Capable of operating a computer and other office productivity machinery, and frequently communicate with co-workers, management, and customers. ## Description The SOC Analyst II will support day-to-day security operations by monitoring security events, investigating alerts, triaging potential incidents, and escalating confirmed or suspected threats in accordance with established procedures. This role serves as an operational analyst within the Security Operations Center and helps maintain situational awareness across enterprise systems, networks, cloud services, endpoints, and security tooling. This role supports a mission-critical cybersecurity initiative for a Federal customer., * Monitor SIEM, EDR, IDS/IPS, email security, vulnerability, and other security platforms for suspicious activity. * Triage alerts and distinguish false positives from actionable security events. * Investigate security events using log data, endpoint telemetry, network data, and threat intelligence. * Escalate incidents in accordance with severity, impact, and response procedures. * Document investigations, findings, and actions taken in ticketing/case management systems. * Support incident handling activities including containment, evidence collection, and coordination with technical teams. * Review vulnerability findings and assist with prioritization and routing to responsible teams. * Participate in shift turnover reporting and maintain accurate operational notes. * Support development and refinement of detection rules, playbooks, and standard operating procedures. * Contribute to metrics reporting such as alert volumes, escalation rates, false positives, and response timelines. * Other responsibilities as assigned. ## Related Videos - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [The best of two worlds - Bringing enterprise-grade Linux to the vehicle](https://www.wearedevelopers.com/videos/67-the-best-of-two-worlds-bringing-enterprise-grade-linux-to-the-vehicle) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Data Analyst Salary in Switzerland](https://www.wearedevelopers.com/magazine/276-data-analyst-salary-in-switzerland)